Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
US Health Firm Data Breach Exposes 140,000 Records

US Health Firm Data Breach Exposes 140,000 Records

Posted on February 23, 2026 By CWS

In a significant cybersecurity incident, a data breach has impacted nearly 140,000 individuals associated with a US healthcare diagnostic firm. The breach was disclosed by Vikor Scientific, a company specializing in molecular diagnostics, recently rebranded as Vanta Diagnostics.

Details of the Data Breach

The breach was highlighted on the US Department of Health and Human Services (HHS) data breach tracker, bringing to light the compromised information of 139,964 individuals linked to the South Carolina-based firm. The incident was initially uncovered in November 2025, when the Everest ransomware group listed Vikor Scientific and its associated labs, KorPath and Korgene, on its data leak website.

The Everest group subsequently released data purportedly stolen from these entities. However, the breach’s origin is traced back to Catalyst RCM, a revenue cycle management solutions provider, rather than a direct attack on Vikor and its affiliates.

Investigation and Findings

Earlier this month, Catalyst RCM disclosed a breach notice on its website. The company detected suspicious activities within its secure file management system in mid-November 2025. An internal investigation revealed that unauthorized access was gained through compromised credentials, leading to the exposure of sensitive data.

The stolen files contained personal information such as names, dates of birth, payment card details, medical data, and health insurance information. The Everest ransomware group claims to have extracted approximately 12GB of documents from Vikor, KorPath, and Korgene.

Ongoing Concerns and Implications

Catalyst RCM, responsible for medical coding and billing services for Vikor Scientific and its affiliates, has notified affected individuals about the compromised data. However, the exact number of individuals impacted remains uncertain, as Catalyst, KorPath, and Korgene have not yet provided detailed figures to the HHS.

Efforts to clarify the total number of affected people are ongoing, with SecurityWeek reaching out to Catalyst RCM for further information. This incident highlights the critical need for robust cybersecurity measures in the healthcare sector to protect sensitive patient data.

As investigations continue, the healthcare industry remains alert to potential ramifications, with stakeholders working to ensure enhanced data protection protocols are implemented moving forward.

Security Week News Tags:Catalyst RCM, Cybersecurity, data breach, Everest ransomware, Healthcare, HHS, medical data, Privacy, Vanta Diagnostics, Vikor Scientific

Post navigation

Previous Post: Critical jsPDF Flaw Puts Developers at Risk of Attacks
Next Post: Critical HPE Telco Service Activator Security Flaw Exposed

Related Posts

Thailand Conference Launches International Initiative to Fight Online Scams Thailand Conference Launches International Initiative to Fight Online Scams Security Week News
Cisco Warns of Hardcoded Credentials in Enterprise Software Cisco Warns of Hardcoded Credentials in Enterprise Software Security Week News
Password Managers Vulnerable to Data Theft via Clickjacking Password Managers Vulnerable to Data Theft via Clickjacking Security Week News
Hackers Target Casino Operator Boyd Gaming Hackers Target Casino Operator Boyd Gaming Security Week News
Details Emerge on Chinese Hacking Operation Impersonating US Lawmaker Details Emerge on Chinese Hacking Operation Impersonating US Lawmaker Security Week News
ShadowV2 DDoS Service Lets Customers Self-Manage Attacks ShadowV2 DDoS Service Lets Customers Self-Manage Attacks Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Anthropic Accuses Chinese AI Labs of Distillation Attacks
  • APT28’s Webhook Malware Targets Europe
  • GrayCharlie Targets WordPress Sites with Malicious Scripts
  • Starkiller Phishing Tool Bypasses MFA with Real Login Pages
  • MIMICRAT RAT Unveiled in Complex ClickFix Cyber Attack

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Anthropic Accuses Chinese AI Labs of Distillation Attacks
  • APT28’s Webhook Malware Targets Europe
  • GrayCharlie Targets WordPress Sites with Malicious Scripts
  • Starkiller Phishing Tool Bypasses MFA with Real Login Pages
  • MIMICRAT RAT Unveiled in Complex ClickFix Cyber Attack

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News